Re: [Roll] multicast & MLD on LLN

Carsten Bormann <cabo@tzi.org> Wed, 15 October 2014 21:16 UTC

Return-Path: <cabo@tzi.org>
X-Original-To: roll@ietfa.amsl.com
Delivered-To: roll@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 684DE1ACD9D for <roll@ietfa.amsl.com>; Wed, 15 Oct 2014 14:16:59 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.55
X-Spam-Level:
X-Spam-Status: No, score=-1.55 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HELO_EQ_DE=0.35] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id W9lSCIpWSrd9 for <roll@ietfa.amsl.com>; Wed, 15 Oct 2014 14:16:58 -0700 (PDT)
Received: from mailhost.informatik.uni-bremen.de (mailhost.informatik.uni-bremen.de [IPv6:2001:638:708:30c9::12]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5D9881ACD1D for <roll@ietf.org>; Wed, 15 Oct 2014 14:16:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at informatik.uni-bremen.de
Received: from smtp-fb3.informatik.uni-bremen.de (smtp-fb3.informatik.uni-bremen.de [134.102.224.120]) by mailhost.informatik.uni-bremen.de (8.14.5/8.14.5) with ESMTP id s9FLGtvo018789 for <roll@ietf.org>; Wed, 15 Oct 2014 23:16:55 +0200 (CEST)
Received: from [192.168.217.145] (p5489134F.dip0.t-ipconnect.de [84.137.19.79]) (using TLSv1 with cipher AES128-SHA (128/128 bits)) (No client certificate requested) by smtp-fb3.informatik.uni-bremen.de (Postfix) with ESMTPSA id 2E0F7A7A; Wed, 15 Oct 2014 23:16:55 +0200 (CEST)
Content-Type: text/plain; charset="windows-1252"
Mime-Version: 1.0 (Mac OS X Mail 7.3 \(1878.6\))
From: Carsten Bormann <cabo@tzi.org>
In-Reply-To: <CABOxzu2kgCjqUk2qv0y7Yw4E7_wP0L_qTTTpvoTeH+Enxic=EA@mail.gmail.com>
Date: Wed, 15 Oct 2014 23:16:53 +0200
X-Mao-Original-Outgoing-Id: 435100613.391469-b12c171cbd81708fea21f47266f3ebb0
Content-Transfer-Encoding: quoted-printable
Message-Id: <FD45410F-4485-46E5-9C7B-E7675E30128F@tzi.org>
References: <aef2e75903e84afe988ff58d04a0fc56@DB4PR01MB0431.eurprd01.prod.exchangelabs.com> <6B9D200B-58B8-423C-ADEA-A6C61F73748B@cisco.com> <AC402B16-8AD9-4033-A7F3-780725F9BAB8@tzi.org> <CABOxzu0-MLJ9esL55oxj_eQRpzXJrf6XErV+jd6UeZ2vuF0H5w@mail.gmail.com> <E045AECD98228444A58C61C200AE1BD842E1C49A@xmb-rcd-x01.cisco.com> <CABOxzu2d_JNFQ+Nu9mw=pW2TPG7qxFm6ocLFvSXChvA_By3xVw@mail.gmail.com> <E045AECD98228444A58C61C200AE1BD842E1C6B0@xmb-rcd-x01.cisco.com> <D063F2D8.2EA57%d.sturek@att.net> <73405C1D-6BD2-4030-8AE9-11B0EDBCE308@tzi.org> <D0644F3D.303D%randy.turner@landisgyr.com> <CABOxzu2kgCjqUk2qv0y7Yw4E7_wP0L_qTTTpvoTeH+Enxic=EA@mail.gmail.com>
To: Routing Over Low power and Lossy networks <roll@ietf.org>
X-Mailer: Apple Mail (2.1878.6)
Archived-At: http://mailarchive.ietf.org/arch/msg/roll/j_XVpVMS9g7GGR38qYMtR8qvzhY
Subject: Re: [Roll] multicast & MLD on LLN
X-BeenThere: roll@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
Reply-To: Routing Over Low power and Lossy networks <roll@ietf.org>
List-Id: Routing Over Low power and Lossy networks <roll.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/roll>, <mailto:roll-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/roll/>
List-Post: <mailto:roll@ietf.org>
List-Help: <mailto:roll-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/roll>, <mailto:roll-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 15 Oct 2014 21:17:00 -0000

On 15 Oct 2014, at 22:38, Kerry Lynn <kerlyn@ieee.org> wrote:

> Surely you'd want to do OTA updates in a secure fashion?  Does this highlight
> a need for secure multicast?

What is the security objective here?
If it is integrity/authenticity, this is best done with object security on the OTA image, which also can provide confidentiality for the bits in the OTA image.
(I don’t think there is a need [or even a way] to keep the fact that an OTA update is occurring confidential.)

Grüße, Carsten